Pith. sign in

REVIEW 1 cited by

Intent-Aware Authorization for Zero Trust CI/CD

Not yet reviewed by Pith; the record is open.

This paper has not been read by Pith yet. Machine review is queued; the pith claim, tier, and objections will appear here once it completes.

SPECIMEN: schema-true, not a live event

T0 review · schema-true

One-sentence machine reading of the paper's core claim.

pith:XXXXXXXX · record.json · timestamp

arxiv 2504.14777 v1 pith:GLVUHGOI submitted 2025-04-21 cs.CR cs.SE

classification cs.CRcs.SE
keywords authorizationtrustzeroaccessidentityintent-awareadditionalapprovals
verification ladder T0 review T1 audit T2 compute T3 formal
0 comments
read the original abstract

This paper introduces intent-aware authorization for Zero Trust CI/CD systems. Identity establishes who is making the request, but additional signals are required to decide whether access should be granted. We describe a control loop architecture where policy engines such as OPA and Cedar evaluate runtime context, justification, and human approvals before issuing access credentials. The system builds on SPIFFE-based workload identity and credential brokers, and enables fine-grained, auditable authorization. This is the third paper in a series on Zero Trust CI/CD design patterns.

Discussion (0). Continue with ORCID to comment.

Forward citations

Cited by 1 Pith paper

Reviewed papers in the Pith corpus that reference this work. Sorted by Pith novelty score. Full citation record

  1. Say What You Mean: Natural Language Access Control with Large Language Models for Internet of Things

    cs.CL 2025-05 conditional novelty 5.0 of 10

    LACE is a hybrid LLM-RAG-OPA framework that generates and verifies natural-language IoT access-control policies and reports up to 88% decision accuracy in smart-home evaluations.

Pith tools